"replace a process level token" security

Secure Home | Search | About

Microsoft Applications Security - Microsoft's general security discussions and announcements 

Bookmark this page:  YahooMyWeb Yahoo!  Google Google  Windows Live Favorites Windows Live  del.icio.us del.icio.us  digg digg  Add to Netscape Netscape
Subject Author Date
"replace a process level token" security bstillion 11-25-2008
Posted by =?Utf-8?B?YnN0aWxsaW9u?= on November 25, 2008, 1:18 pm
If you were  Registered and logged in, you could reply and use other advanced thread options

This security setting is in the Default Domain Controller
Policy and typically includes the local system account.

What security concerns are there by giving user accounts
this right including "Authenticated Users"?

Reason for the question: On a locked down PC, a user needs
to open Internet Explorer and get access to a share. One of the
desktop support developers has created a WINBATCH script to
do this.
--
BStillion
Portland ME

Similar ThreadsPosted
Security token design question July 28, 2005, 3:06 pm
Level of access required to view application, security, system eve March 28, 2009, 7:25 am
Replace the VPN's encryption algorithm March 12, 2006, 9:34 am
Replace server that uses IPsec policy March 5, 2009, 4:06 pm
Server was unable to process request. --> Security error March 18, 2010, 9:40 am
Token validation is inconsistent May 16, 2008, 10:25 am
ConnectServer using impersonation token October 20, 2008, 5:00 am
Is there any SPNEGO/GSSAPI token creation API? August 9, 2005, 9:29 pm
Kerberos token in windows logon December 23, 2008, 5:45 pm
How to create the SPNEGO token used in CIFS/SMB authentication? August 4, 2005, 7:42 pm

The site map in XML format XML site map

Contact Us | Privacy Policy